Mcp Cloudflare Dns — independently scanned and version-tracked by SaferSkills.
SaferSkills independently audited Mcp Cloudflare Dns (Agent Skill) and scored it 100/100 (green). The audit ran 55 deterministic rules across Security, Supply Chain, Maintenance, Transparency, and Community; it found 0 high-severity and 0 lower-severity findings. The full rule-by-rule trace and per-finding evidence are below. Free, methodology-open.
Findings & checks · 0 flagged
Every scanned point with the score it earned and what moved between them.
First recorded scan — no prior version to compare against.
The primary manifest — the file an agent reads to learn what this artifact does.
MCP server for managing and analyzing Cloudflare DNS — zones, records, analytics, and DNSSEC.
Add to your Claude Code MCP settings (.claude/settings.local.json or global settings):
{
"mcpServers": {
"cloudflare-dns": {
"command": "npx",
"args": ["-y", "@kodim/mcp-cloudflare-dns"],
"env": {
"CLOUDFLARE_API_TOKEN": "your-cloudflare-api-token"
}
}
}
}{
"mcpServers": {
"cloudflare-dns": {
"command": "npx",
"args": ["-y", "@kodim/mcp-cloudflare-dns"],
"env": {
"CLOUDFLARE_API_TOKEN": "your-cloudflare-api-token"
}
}
}
}Create an API token at Cloudflare Dashboard.
Required permissions:
You can use the "Edit zone DNS" template as a starting point and add Analytics read permission.
| Tool | Description |
|---|---|
list_zones | List all DNS zones. Filter by name, status. |
get_zone | Get full details of a zone by ID. |
| Tool | Description |
|---|---|
list_dns_records | List records with filters (type, name, content, proxied, search, tag). |
get_dns_record | Get details of a specific record. |
create_dns_record | Create a record (A, AAAA, CNAME, MX, TXT, SRV, etc.). |
update_dns_record | Partially update an existing record. |
delete_dns_record | Permanently delete a record. |
| Tool | Description |
|---|---|
batch_dns_records | Create, update, and delete multiple records in one call. |
export_dns_records | Export all records in BIND format (for backups). |
import_dns_records | Import records from BIND format content. |
| Tool | Description |
|---|---|
get_dns_analytics | Summary metrics: query count, response times, cache stats. |
get_dns_analytics_by_time | Time-series analytics with configurable intervals. |
| Tool | Description |
|---|---|
get_dnssec_status | Get DNSSEC status and DS record details. |
update_dnssec_status | Enable or disable DNSSEC. |
# Install dependencies
npm install --ignore-scripts
# Build
npm run build
# Watch mode
npm run watch
# Test with MCP Inspector
CLOUDFLARE_API_TOKEN=your-token npm run devMIT
~30 seconds. Free. No account. Every finding cites a rule and a line of evidence.